CVE-2021-26120
—CVSS 3.1
9.8 critical
EPSS
82%p100
Published
()
Modified
Description
Smarty before 3.1.39 allows code injection via an unexpected function name after a {function name= substring.
In the news0 stories
No ingested article mentions this CVE yet.